ATM_ID: 81DAE504-65F7-11E7-9434-A3C6D30A4651 MFF: PLANNEDTIMESTAFF: ID: DPQA_Regression_Accounting/Testcases/FS_50.001_Audit_Log/97056 TESTCASE_HEADLINE: To check the auditlog shall capture an event if the LDAP users with SA rights logged-in in CWIS and assigning/removing LDAP Groups to Logged-in user role/junior administrator permission roles when "All Logged-in Users" method is turned on. GROUP: FEATURE: SUB_FEATURE: INPUT:
1.Make sure the device upgraded with latest D3.5 build.
2.The device WebUI should be functional.
3.Make sure the Login-methods should be set as 'User Name / Password Validate on the Network' and user permissions method should be set as "Remotely on the Network using LDAP".
4.Make sure LDAP server should be configured in the device.
5.Make sure the more than one user permissions and Junior Administrator role should be created (Assumes an existing role has been created by a previous test).
6.Make sure the Device user with SA rights should be created.
Scenario 1: (Logged-In User role)
1.Navigate to CWIS->Login as LDAP user with SA rights->Logged-In users->Click "Edit User Mappings" for an existing role to go to the "Manage Permission Role" screen.
2.Select "All Logged-in Users" option to assign all the LDAP users to this role.
3.Download the auditlog and unzip the auditfile.zip file to verify the event:144 captured in the main auditfile.txt.
Scenario 2: (Junior Administrator role)
4.Follow step 1 to go to CWIS->User permissions->Device Management->click "Edit User Mappings" for an existing role to go to the "Manage Permission Role" screen.
5.Follow step 2-3 to verify he events.
Scenario 3: (Remove)
6.Follow step 1 to go to CWIS->Logged-In users->click "Edit User Mappings" for an existing role which has users assigned by selecting All Logged-in Users option to go to manage permission role screen.
7.Now just select the "Select Individual Users' option from All logged-in Users option and apply the changes.
8.Download the auditlog and verify the event:144 captured in the main auditfile.txt.
9.Follow step 4 to go to CWIS->Device management->click "Edit User Mappings" for an existing role which has users assigned by selecting All Logged-in Users option to go to manage permission role screen.
10.Follow step 7 and 8 to verify the event.
Scenario 1 and 2:
Auditfile.txt file should be captured separate entries for all the users added to that role with the below information for scenario 1 & 2:
Event ID: 144
Event Description: User or Group Role
Assignment
Username
Device name
Device serial number
All Logged-in Users (User or group name (assigned))
Role name
\
Action: added
Scenario 3:
Auditfile.txt file should be captured separate entries for all the users removed from the role with the below information for scenario 3:
Event ID: 144
Event Description: User or Group Role
Assignment
Username
Device name
Device serial number
All Logged-in Users (instead of User or group name (assigned))
Role name
\
Action: Removed